An unknown maintainer managed to push an update to one of our public docker images. Our SOC team reported suspicious traffic coming from some of our steam factories ever since. The update got retracted making us unable to investigate further. We are concerned that this might refer to a supply-chain attack. Could you investigate? Docker Image: steammaintainer/gearrepairimage
Action | Rating | Author team |
---|---|---|
Read writeup |
not rated
|
0xdeada1u5 |
Read writeup |
not rated
|
Knightsec |
Read writeup |
not rated
|
Order of the PurpleFlamingo |
Read writeup |
not rated
|
ducks0ci3ty |